Reference page — cumulative record through Wednesday, August 19, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.
Weakness type CWE-754 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.
| CVEs all-time | CVEs YTD | KEV all-time |
|---|---|---|
| 67 | 56 | 0 |
▁▁▁▂▁▂▁▁▁▂▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▇▃▇█
2025-09 0 · 2025-10 0 · 2025-11 0 · 2025-12 0 · 2026-01 0 · 2026-02 1 · 2026-03 0 · 2026-04 0 · 2026-05 16 · 2026-06 5 · 2026-07 16 · 2026-08 18
| CVE | CVSS | EPSS %ile | KEV | Title |
|---|---|---|---|---|
| CVE-2026-25639 | 7.5 | 83.4 | — | Axios affected by Denial of Service via __proto__ Key in mergeConfig |
| CVE-2026-5946 | 7.5 | 77.7 | — | Invalid handling of CLASS != IN |
| CVE-2026-39929 | 8.7 | 70.4 | — | Lakeside SysTrack Agent LsiAgent.exe Out-of-Bounds Read via UDP |
| CVE-2024-42284 | 7.8 | 57.6 | — | tipc: Return non-zero value from tipc_udp_addr2str() on error |
| CVE-2025-38566 | 7.5 | 45.5 | — | sunrpc: fix handling of server side tls alerts |
| CVE-2024-50284 | 5.5 | 43.0 | — | ksmbd: Fix the missing xa_store error check |
| CVE-2025-13392 | 9.8 | 42.7 | — | — |
| CVE-2026-56812 | 6.3 | 41.2 | — | Phoenix JavaScript presence client crashes on presence keys colliding with Object.proto… |
| CVE-2026-8091 | 9.8 | 38.8 | — | Incorrect boundary conditions in the Audio/Video: Playback component |
| CVE-2026-44324 | 6.5 | 35.2 | — | free5GC: UDR nudr-dr DELETE amf-subscriptions panics on missing UE state via nil interf… |
| CVE-2026-44316 | 7.5 | 33.8 | — | free5GC: PCF npcf-smpolicycontrol POST /sm-policies panics on downstream UDR/OpenAPI 40… |
| CVE-2026-54269 | 5.3 | 33.6 | — | protobufjs: Schema-derived names can shadow runtime-significant properties |
| CVE-2026-44322 | 7.5 | 32.3 | — | free5GC: NEF 3gpp-pfd-management PATCH applications/{appId} panics on UDR access failur… |
| CVE-2026-0667 | 9.3 | 30.1 | — | — |
| CVE-2026-44317 | 6.5 | 28.2 | — | free5GC: PCF npcf-policyauthorization POST /app-sessions panics on suppFeat=1 with miss… |
| CVE-2026-46541 | 7.5 | 27.8 | — | Nimiq network-libp2p: DHT query poisoning via first-record verification failure |
| CVE-2026-69185 | 7.5 | 27.7 | — | Socket.IO: Zero-attachment Memory Exhaustion |
| CVE-2026-45678 | 7.5 | 27.3 | — | OpenTelemetry eBPF Instrumentation: Postgres BIND parsing can panic on malformed payloads |
| CVE-2026-47216 | 8.7 | 26.6 | — | Typesense: Unauthenticated Denial of Service in the Typesense /multi_search Endpoint |
| CVE-2026-54775 | 6.5 | 26.6 | — | CoreWCF: Kafka consume pump halts permanently on a Kafka tombstone (null-value record),… |
| Vendor | CVEs |
|---|---|
| linux | 11 |
| juniper networks | 5 |
| free5gc | 4 |
| indian motorcycle | 4 |
| atn-b1 | 2 |
| eugeny | 2 |
| mattermost | 2 |
| nimiq | 2 |
| palo alto networks | 2 |
| @fastify/busboy | 1 |
| axios | 1 |
| corewcf | 1 |
| cure53 | 1 |
| drupal | 1 |
| epsilla-cloud | 1 |